
Denmark CPR Breach Exposes Data of 8.8 Million People
Attackers abused a private firm’s lawful lookup rights to pull names, addresses and CPR numbers of 8.8 million people from

Attackers abused a private firm’s lawful lookup rights to pull names, addresses and CPR numbers of 8.8 million people from

Atlassian disclosed CVE-2026-21589, a CVSS 9.3 path traversal flaw that lets unauthenticated attackers read web-root files in eight Data Center

The FBI removed an Accenture contractor over an unapplied patch that let ShinyHunters breach FBIJobs.gov, as a suspected group leader

Nikkei says attackers breached two employee email accounts, exposed data on 1,646 people and sent about 9,000 phishing emails from

Daniel Rhyne, a former core infrastructure engineer, was sentenced to 32 months for locking over 3,000 devices at a New

The US Senate passed the bipartisan Health Care Cybersecurity and Resilience Act by unanimous consent, sending grants and coordination measures

Microsoft Threat Intelligence says a new ClickFix variant hides a script in the browser cache as a PNG, sidestepping the

FortiGuard and Nozomi detail Cling, a Linux botnet that hides command traffic in STUN requests and exploits about two dozen

A critical Rejetto HFS flaw, CVE-2026-61500, lets attackers forge admin session cookies and gain remote code execution; active exploitation began

Citrix released emergency patches for CVE-2026-88779, a NetScaler SAML zero-day under active attack that can knock enterprise login gateways offline
Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.